3
Hi, I’m looking to block access to the administrative part of my site and release to only a few ips. I can do this using the .htacess
well quiet but the problem is that I have the module Adminstrativa and the frontend module and the .htaccess
of the web folder blocks the whole system and not only the administrative one. I wanted to know how to make it block access by the url or the admin folder. I tried to use the .htaccess
and the .htpasswd
in the login folder but not rolled.
Someone who’s been through this has some idea?
mass, that works for symfony 1.4?
– Estácio Di Fabio
I don’t think so. I saw the security configuration of Symfony 1.4 and it is very raw: http://symfony.com/legacy/doc/reference/1_4/en/08-Security. It might be a good idea to upgrade the Symfony version on your system, since security is so crucial and it is built on top of a version that is no longer maintained - therefore potentially insecure.
– Rodrigo Rigotti
truth I know. is that I needed to make a system with a framework made on the basis of symfony 1.4 here in the company. Ai I won’t be able to do another enterprise framework in version 2.0 or 3.0 for lack of time. But I’ll see what I can do in version 1.4
– Estácio Di Fabio
Maybe it’s a good idea to put the administrative section on a separate virtual host and put the access rules there, like Ips allowed, there. If you think it’s a good idea, tell me I’ll put another answer.
– Rodrigo Rigotti